CVE-2025-25008

CVSS 3.1 Score 7.1 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 59

Summary

CVE-2025-25008 is a vulnerability affecting Microsoft Windows. An attacker who has already gained authorized access to a system can exploit this issue by following improperly resolved links. This can result in privilege escalation, enabling the attacker to elevate their access to higher levels within the local system. This vulnerability poses a significant risk, particularly in environments where attackers have already gained a foothold, and should be addressed promptly by applying the relevant security updates.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows Server 2022

Affected Vendors

  • Microsoft